Re: Warning: Iframe based attacks using stolen FTP access info
You may want to download all the files on your site, and use a search tool to find any references to "iframe" or the URL that they're pointing/pulling from.
Also, depending on your host, they should be able to run this query quickly for you. We've done it a number of times for our customers and we ran routine checks on our servers for the exploits as they came up. Contact your host, they should be able to tell you what file it's located in.
|